A selection of the most interesting information security incidents for August 2020

Hello, Habr!

Reksoft talks about the most interesting hacks and attacks in August. The selection does not include incidents related to database "leaks" and does not claim to be a complete picture of all world information security incidents. We bring to your attention what seemed to us the most significant.

Canon

Hackers attacked the company using Maze software. The attack disrupted email, Microsoft Teams and Canon's official US website. Hackers managed to penetrate the company's infrastructure, and then steal and encrypt more than 10 TB of data, including confidential ones.

USA company website
USA company website
Company official statement
Company official statement

A little later, the journalists of Bleeping Computer reported that hackers began to publish on their website information previously stolen from the company. The published file is a 2.2 GB STRATEGICPLANNINGpart62.zip archive.

Published file
Published file

Sources:

Fast payment systems (FPS)

, . , , , . , , , , . , .

" ( ) . ", - . .

: kommersant.ru

SANS Institute

SANS Institute, . SANS SharePoint, .

Phishing email

SANS Institute , , , , , , SANS Digital Forensics & Incident Response (DFIR) Summit. , ( ).

:

Carnival Corporation

. .     CVE-2019-19781   Citrix. , CVE-2020-2021, PAN-OS ( ) Palo Alto Networks.

: bleepingcomputer.com

Konica Minolta

- . RansomEXX, mykmbs.com. . , readme.txt , , .

, .K0N1M1N0.

The readme.txt file left by the attackers.
readme.txt .

: bleepingcomputer.com




All Articles